CVE-2016-1646
גבוהה 8.8 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Google Chromium V8 Out-of-Bounds Read Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply updates per vendor instructions.
תיאור (מקור, אנגלית)
The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome before 49.0.2623.108, does not properly consider element data types, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via crafted JavaScript code.
מדדים
- CVSS 3.1
-
8.8 (HIGH)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 48% (אחוזון 100) נכון ל-24/7/2026
- CWE
- CWE-125
מוצרים מושפעים
debian: debian linux; canonical: ubuntu linux; google: chrome; suse: package hub; opensuse: leap; opensuse: opensuse; redhat: enterprise linux desktop; redhat: enterprise linux eus; redhat: enterprise linux server; redhat: enterprise linux workstation
קישורים
- http://googlechromereleases.blogspot.com/2016/03/stable-channel-update_24.html Release NotesVendor Advisory
- http://googlechromereleases.blogspot.com/2016/03/stable-channel-update_24.html Release NotesVendor Advisory
- https://codereview.chromium.org/1804963002/ Patch
- https://codereview.chromium.org/1804963002/ Patch
- https://code.google.com/p/chromium/issues/detail?id=594574 ExploitIssue TrackingMailing List
- https://code.google.com/p/chromium/issues/detail?id=594574 ExploitIssue TrackingMailing List
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00000.html Mailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00001.html Mailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00039.html Mailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-0525.html Third Party Advisory